Skip to content
Noroxi

snowsoftware records

12 published records for vendor snowsoftware.

Researcher profile

Entered KEV
1 · 8.3%
Weaponized
1 · 8.3%
Pre-auth RCE
1
With a fix record
25%
Median publish → KEV
0 days

All records

12 records
  • Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints

    CriticalCVSS 10.0KEVWeaponizedEPSS 100%

    apache · log4jDec 10, 2021

  • CVE-2024-4129
    35Monitor

    Authentication bypass in Snow License Manager

    HighCVSS 8.8No exploitEPSS 0%

    snow software ab · snow license managerMay 14, 2024

  • Snow Inventory Agent through 6.7.0 on Windows uses CPUID to report on processor types and versions that may be deployed and in use across an

    HighCVSS 7.8No exploitEPSS 0%

    snowsoftware · snow inventory agentFeb 23, 2021

  • CVE-2021-4106
    31Monitor

    Vulnerability in Snow Inventory Java Scanner

    HighCVSS 7.8No exploitEPSS 0%

    snowsoftware · snow inventory java scannerFeb 16, 2022

  • CVE-2022-0883
    31Monitor

    Windows Unquoted/Trusted Service Paths

    HighCVSS 7.8No exploitEPSS 0%

    snowsoftware · snow license managerMay 18, 2022

  • CVE-2023-3864
    28Monitor

    SQL injection vulnerability in Snow License Manager

    HighCVSS 7.2No exploitEPSS 1%

    snowsoftware · snow license managerAug 11, 2023

  • Deletion of arbitrary files vulnerability in Snow Agent for Windows

    MediumCVSS 6.1No exploitEPSS 0%

    snowsoftware · snow inventory agentNov 3, 2021

  • CVE-2023-7169
    22Monitor

    Impersonate vendor signed Powershell scripts

    MediumCVSS 5.5No exploitEPSS 0%

    snowsoftware · snow inventory agentFeb 8, 2024

  • CVE-2024-1149
    22Monitor

    Improper validation of update packages

    MediumCVSS 5.5No exploitEPSS 0%

    snowsoftware · snow inventory agentFeb 8, 2024

  • CVE-2024-1150
    22Monitor

    Improper validation of update packages

    MediumCVSS 5.5No exploitEPSS 0%

    snowsoftware · snow inventory agentFeb 8, 2024

  • CVE-2023-3937
    19Monitor

    Cross site scripting vulnerabilities in Snow License Manager

    MediumCVSS 4.8No exploitEPSS 0%

    snowsoftware · snow license managerAug 11, 2023

  • CVE-2023-2679
    17Monitor

    Data leakage in Adobe connector for SPE edition of SLM

    MediumCVSS 4.3No exploitEPSS 0%

    snowsoftware · snow license managerMay 17, 2023